OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-78406

CRITICAL · CVSS 9.8 EPSS 0.50%

Source: NVD + CISA KEV + EPSS · Published 2026-10-08 · Last synced 2026-10-09

CyberRota Analysis

AI-Generated

IBM Security Verify Access versions 10.0 through 10.0.9.2 and IBM Verify Identity Access versions 11.0 through 11.0.3 are vulnerable to remote code execution due to the deserialization of untrusted data. This critical vulnerability allows unauthenticated attackers to execute arbitrary code, potentially compromising the integrity and confidentiality of the affected systems. Organizations using these IBM products should prioritize immediate remediation to mitigate the risk of exploitation.

CVE
CVE-2026-78406
Severity
CRITICAL
CVSS
9.8
EPSS
0.50%

Original NVD Description

IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a remote unauthenticated attacker to execute arbitrary code on the system due to the deserialization of untrusted data.

Related CVEs

Other vulnerabilities affecting the same vendor(s)